Re: [perpass] "Guide to intranet protection"?

"Christian Huitema" <huitema@huitema.net> Thu, 28 November 2013 05:15 UTC

Return-Path: <huitema@huitema.net>
X-Original-To: perpass@ietfa.amsl.com
Delivered-To: perpass@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 663D31AE0DB for <perpass@ietfa.amsl.com>; Wed, 27 Nov 2013 21:15:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KzYjsKjFIA-S for <perpass@ietfa.amsl.com>; Wed, 27 Nov 2013 21:15:31 -0800 (PST)
Received: from xsmtp03.mail2web.com (xsmtp23.mail2web.com [168.144.250.186]) by ietfa.amsl.com (Postfix) with ESMTP id 7D3331AC828 for <perpass@ietf.org>; Wed, 27 Nov 2013 21:15:31 -0800 (PST)
Received: from [10.5.2.18] (helo=xmail08.myhosting.com) by xsmtp03.mail2web.com with esmtps (TLS-1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.63) (envelope-from <huitema@huitema.net>) id 1Vltwn-0004GA-Q8 for perpass@ietf.org; Thu, 28 Nov 2013 00:15:30 -0500
Received: (qmail 12558 invoked from network); 28 Nov 2013 05:15:28 -0000
Received: from unknown (HELO HUITEMA5) (Authenticated-user:_huitema@huitema.net@[72.235.170.205]) (envelope-sender <huitema@huitema.net>) by xmail08.myhosting.com (qmail-ldap-1.03) with ESMTPA for <dcrocker@bbiw.net>; 28 Nov 2013 05:15:27 -0000
From: Christian Huitema <huitema@huitema.net>
To: dcrocker@bbiw.net, 'perpass' <perpass@ietf.org>
References: <5295FC4F.7060309@dcrocker.net>
In-Reply-To: <5295FC4F.7060309@dcrocker.net>
Date: Wed, 27 Nov 2013 21:15:21 -0800
Message-ID: <027801ceebf8$da0328e0$8e097aa0$@huitema.net>
MIME-Version: 1.0
Content-Type: text/plain; charset="Windows-1252"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 15.0
Thread-Index: AQL2Ez6VpOy/raTxzEp1sYC1gihbz5fryxUA
Content-Language: en-us
Subject: Re: [perpass] "Guide to intranet protection"?
X-BeenThere: perpass@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "The perpass list is for IETF discussion of pervasive monitoring. " <perpass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/perpass>, <mailto:perpass-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/perpass/>
List-Post: <mailto:perpass@ietf.org>
List-Help: <mailto:perpass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/perpass>, <mailto:perpass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 28 Nov 2013 05:15:33 -0000

-----Original Message-----
From: perpass [mailto:perpass-bounces@ietf.org] On Behalf Of Dave Crocker
Sent: Wednesday, November 27, 2013 6:06 AM
To: perpass
Subject: [perpass] "Guide to intranet protection"?

Morning mid-coffee question:

      There have been some recent news articles about various major ISPs 
taking steps to encrypt their (internal) traffic.  These prompt me to 
wonder whether it would be practical and useful for the IETF to produce 
a basic draft that gives guidance to other ISP and enterprise operators 
about the steps they should take to protect their traffic.

      I'm assuming that providing meaningful protection takes a 
statement beyond "encrypt all your links".  Perhaps it doesn't, but I 
thought I'd ask...

d/
-- 
Dave Crocker
Brandenburg InternetWorking
bbiw.net
_______________________________________________
perpass mailing list
perpass@ietf.org
https://www.ietf.org/mailman/listinfo/perpass